NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3531  CVE-2008-3663  Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.    Medium  2017-01-03  2010-08-21  View
3787  CVE-2008-3925  Cross-site request forgery (CSRF) vulnerability in admin.php in Content Management Made Easy (CMME) 1.12 allows remote attackers to trigger the logout of an administrative user via a logout action.    4.3  Medium  2017-01-03  2009-01-29  View
69323  CVE-2005-3685  Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web script or HTML via the UserName parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4043  CVE-2008-4187  Directory traversal vulnerability in index.php in ProActive CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter.    4.3  Medium  2017-01-03  2009-01-29  View
4299  CVE-2008-4476  sympa.pl in sympa 5.3.4 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sympa_aliases.$$ temporary file. NOTE: wwsympa.fcgi was also reported, but the issue occurred in a dead function, so it is not a vulnerability.    6.9  Medium  2017-01-03  2009-09-08  View

Page 15790 of 17672, showing 5 records out of 88360 total, starting on record 78946, ending on 78950

Actions